The obsession with where data physically sits at rest is so amusing to me. Not limited to overzealous governments and financial data; healthcare is singularly obsessed with this. It makes no sense whatsoever, of course. I'd much rather store properly encrypted personal information or financial data in North Korea than storing it unencrypted in my home country. I would understand if they demanded both storage and proc…
"Or am I missing something? " Jurisdiction is huge thing, not a side show. Data that sits overseas is subject to entirely different sets of laws which can conflict with local laws. Those laws also relate to espionage, and even outside the framework of legality ... it matters as well. It's a lot easier for the NSA to collect data on individuals if it's hosted in the US. I have absolutely no doubt that financial, legal…
1. If it's encrypted, it doesn't matter where it's stored.
2. If it's not encrypted, it can be easily stored in country X, processed in country X, but routed via SnoopHub in country Y. Country Y loves surveilling and is very happy about this state of affairs.
>I have absolutely no doubt that financial, legal and health records should simply not leave the local legal jurisdiction without consent and a few more things.
A very common attitude, usually held by people who "geographize" that which is not geographic in nature - the Internet.